Aller au contenu

Fiche vulnérabilité

CVE-2020-7505 : faille élevée schneider-electric easergy t300 firmware (CVSS 7.2)

Description

A CWE-494 Download of Code Without Integrity Check vulnerability exists in Easergy T300 (Firmware version 1.5.2 and older) which could allow an attacker to inject data with dangerous content into the firmware and execute arbitrary code on the system.

En bref

Sévérité
Élevée (CVSS 7.2)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
16 juin 2020
Dernière mise à jour
17 juin 2026

Produits concernés

  • schneider-electric easergy t300 firmware

Références

Rechercher une autre vulnérabilité dans la base CVE